We worked with this SaaS Provider over a 6 month period to ensure compliance activities are in order and set up a framework for ongoing compliance. One of the key requirements of the GDPR is the ability to demonstrate compliance. We provided all template policies and procedures that the organisation needed and helped them to implement these policies. This included, Record of Processing Activities, Data Protection Policies, Retention Schedule, Breach Management Policies and Procedures and documented Technical and Organisation Measures. We also provided Data Processing Agreements to cover data transfer requirements. At the end of the 6 months the company had a very clear compliance framework in place and was able to provide any customer undertaking due diligence with comprehensive evidence to demonstrate its compliance activities.